A vulnerability classified as critical was found in Intelbras InControl 2.21.56. This vulnerability affects unknown code of the component incontrolWebcam Service. The manipulation leads to unquoted search path. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.21.58 is able to address this issue. It is recommended to upgrade the affected component. The vendor was contacted early about this disclosure and plans to provide a solution within the next few weeks.
History

Mon, 04 Nov 2024 20:15:00 +0000

Type Values Removed Values Added
CPEs cpe:2.3:a:intelbras:incontrol:2.21.56:*:*:*:*:*:*:*
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 04 Nov 2024 19:15:00 +0000

Type Values Removed Values Added
Description A vulnerability classified as critical was found in Intelbras InControl 2.21.56. This vulnerability affects unknown code of the component incontrolWebcam Service. The manipulation leads to unquoted search path. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. VDB-268822 is the identifier assigned to this vulnerability. NOTE: The vendor was contacted early about this disclosure and plans to provide a solution within the next few weeks. A vulnerability classified as critical was found in Intelbras InControl 2.21.56. This vulnerability affects unknown code of the component incontrolWebcam Service. The manipulation leads to unquoted search path. Local access is required to approach this attack. The exploit has been disclosed to the public and may be used. Upgrading to version 2.21.58 is able to address this issue. It is recommended to upgrade the affected component. The vendor was contacted early about this disclosure and plans to provide a solution within the next few weeks.
Weaknesses CWE-426
References

Fri, 20 Sep 2024 00:45:00 +0000

Type Values Removed Values Added
First Time appeared Intelbras
Intelbras incontrol
CPEs cpe:2.3:o:intelbras:incontrol:2.21.56:*:*:*:*:*:*:*
Vendors & Products Intelbras
Intelbras incontrol

cve-icon MITRE

Status: PUBLISHED

Assigner: VulDB

Published: 2024-06-17T23:00:05.125Z

Updated: 2024-11-04T19:13:12.474Z

Reserved: 2024-06-17T16:52:16.498Z

Link: CVE-2024-6080

cve-icon Vulnrichment

Updated: 2024-08-01T21:25:03.365Z

cve-icon NVD

Status : Modified

Published: 2024-06-17T23:15:51.583

Modified: 2024-11-21T09:48:55.260

Link: CVE-2024-6080

cve-icon Redhat

No data.